Free AWS-Certified-Advanced-Networking-Specialty Exam Braindumps (page: 29)

Page 29 of 102

You can use the __________ command of the AWS Config service CLI to see the compliance state for each AWS resource of a specific type.

  1. describe-compliance-by-resource
  2. get-compliance-details-by-config-rule
  3. describe-compliance-by-config-rule
  4. get-compliance-details-by-resource

Answer(s): A

Explanation:

You can use the AWS Config console, AWS CLI, or AWS Config API to view the compliance state of your rules and resources. The describe-compliance-by-resource command of the AWS Config CLI to see the compliance state for each AWS resource of a specific type. This is distinct from the describe-compliance-by-config-rule command, which gives the compliance state of each rule in AWS Config .


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config_view-compliance.html



When an AWS Config rule is triggered a JSON object known as an AWS Config Event is created. This object contains another JSON string in its ________ parameter, which describes the event that triggered the rule.

  1. resultToken
  2. eventLeftScope
  3. invokingEvent
  4. configRuleName

Answer(s): C

Explanation:

The JSON object for an AWS Config event contains an invoking Event attribute, which describes the event that triggers the evaluation for a rule. If the event is published in response to a resource configuration change, the value for this attribute is a string that contains a JSON configuration Item or a configuration Item Summary (for oversized configuration items). The configuration item represents the state of the resource at the moment that AWS Config detected the change. If the event is published for a periodic evaluation, the value is a string thatcontains a JSON object. The object includes information about the evaluation that was triggered. For each type of event, a function must parse the string with a JSON parser to be able to evaluate its contents.


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config_develop-rules_exa mple-events.html



When an AWS Config rule is triggered a JSON object known as an AWS Config Event is created. This object contains a(n) __________attribute, which is a JSON-formatted set of key/value pairs the receiving AWS Lambda function processes as part of its evaluation logic.

  1. inputParameters
  2. invokingEvent
  3. ruleConfiguration
  4. mappingTemplate

Answer(s): A

Explanation:

The JSON object for an AWS Config event contains a ruleParameters attribute, which is a set of key/value pairs that the AWS Lambda function receiving the event processes as part of its evaluation logic. You define parameters when you use the AWS Config console to create a custom rule. You can also define parameters with the InputParameters attribute in the PutConfigRule AWS Config API request or the put-config-rule AWS CLI command. The JSON code for the parameters is contained within a string, so a function must parse the string with a JSON parser to be able to evaluate its contents


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/evaluate-config_develop-rules_exa mple-events.html



When using AWS Config, which two items are stored on S3 as a part of its operation?

  1. Configuration Items and Configuration History
  2. Configuration Recorder and Configuration Snapshots
  3. Configuration History and Configuration Snapshots
  4. Configuration Snapshots and Configuration Streams

Answer(s): C

Explanation:

S3 is used to store the Configuration History files and any Configuration Snapshots of your data within a single bucket, which is defined within the Configuration Recorder. You can get AWS Config to create a new bucket for you and select an existing bucket. If you have multiple AWS accounts you may want to aggregate your Configuration History and Snapshot files into the same S3 Bucket for your primary account, just be aware that this can be achieved. However, you will need to grant write access for the service principal (config.amazonaws.com) in your other accounts write access to the S3 bucket.


Reference:

http://docs.aws.amazon.com/config/latest/developerguide/config-concepts.html#config-items



Page 29 of 102



Post your Comments and Discuss Amazon AWS-Certified-Advanced-Networking-Specialty exam with other Community members:

Hello commented on September 04, 2024
awesome questions
Anonymous
upvote

Meenakshi commented on June 06, 2024
One of the best exam dumps site I have ever used. I have passed 3 of my exams with the help of this website.
INDIA
upvote